emalderson / ThePhishView external linksLinks
ThePhish: an automated phishing email analysis tool
☆1,328Aug 1, 2024Updated last year
Alternatives and similar repositories for ThePhish
Users that are interested in ThePhish are comparing it to the libraries listed below
Sorting:
- The openSquat is an open-source tool for detecting domain look-alikes by searching for newly registered domains that might be impersonati…☆935Jan 8, 2026Updated last month
- Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows…☆2,048Dec 11, 2024Updated last year
- IntelOwl: manage your Threat Intelligence at scale☆4,451Updated this week
- Collaborative Incident Response platform☆1,384Jan 27, 2026Updated 2 weeks ago
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆861Jan 20, 2022Updated 4 years ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,440Oct 12, 2025Updated 4 months ago
- Malwoverview is a rapid response tool used to gather intelligence information from VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malsh…☆3,531Jan 20, 2026Updated 3 weeks ago
- Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.☆3,014Feb 4, 2026Updated last week
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,400Nov 7, 2024Updated last year
- Your Everyday Threat Intelligence☆1,949Updated this week
- GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]☆1,538Jul 28, 2024Updated last year
- Open Cyber Threat Intelligence Platform☆8,212Updated this week
- A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365☆790Oct 29, 2022Updated 3 years ago
- Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation☆5,583Apr 15, 2025Updated 10 months ago
- Documentation and scripts to properly enable Windows event logs.☆671Oct 3, 2025Updated 4 months ago
- Digging Deeper....☆3,747Feb 5, 2026Updated last week
- WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)☆780Feb 3, 2023Updated 3 years ago
- Detect Tactics, Techniques & Combat Threats☆2,263Jan 21, 2026Updated 3 weeks ago
- Automated Adversary Emulation Platform☆6,733Updated this week
- evilginx3 + gophish☆1,952Jun 15, 2024Updated last year
- A powerful and user-friendly browser extension that streamlines investigations for security professionals.☆415May 13, 2025Updated 9 months ago
- TheHive is a Collaborative Case Management Platform, now distributed as a commercial version☆3,883Jul 25, 2025Updated 6 months ago
- Collection of Cyber Threat Intelligence sources from the deep and dark web☆6,557Updated this week
- E-Mail Header Analyzer☆697Apr 11, 2023Updated 2 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11,570Updated this week
- This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and …☆2,468Dec 31, 2025Updated last month
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆801Jan 14, 2026Updated last month
- The SOC Analysts all-in-one CLI tool to automate and speed up workflow.☆1,456Sep 25, 2024Updated last year
- Windows Events Attack Samples☆2,507Jan 24, 2023Updated 3 years ago
- Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?☆2,133Nov 11, 2025Updated 3 months ago
- Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.☆2,183Updated this week
- PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection…☆724Aug 9, 2025Updated 6 months ago
- VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention capabilities a…☆1,548Nov 24, 2025Updated 2 months ago
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆6,487Jan 18, 2026Updated 3 weeks ago
- Ansible playbook to deploy a phishing engagement in the cloud.☆223May 19, 2022Updated 3 years ago
- Digital Forensics Investigation Platform☆870Oct 12, 2024Updated last year
- SMBeagle - Fileshare auditing tool.☆744Nov 4, 2025Updated 3 months ago
- Main Sigma Rule Repository☆10,109Updated this week
- Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term o…☆2,618Dec 13, 2025Updated 2 months ago